Authority Guidance

Follow best practices by knowing the latest guidance issued by authorities with our unique insights.

Only some are linked below. To read all previous insights and be alerted to future insights, join the relevant Michalsons programme. You can view the public and the “Members only” ones if you are a member and logged in.

EDPB Guideline | Dark patterns in social media platform interfaces

The European Data Protection Board (EDPB) published guidelines relating to dark patterns on social media platforms. If social media platforms designers don't follow the guidelines, they could infringe the EU General Data Protection Regulation (GDPR). The guidelines provide designers with [...]

Guidance note on application for prior authorisation

The information regulator issued a Guidance Note on application for Prior Authorisation (dated 11 March 2021) to guide responsible parties who are currently processing or intend to process personal information which is subject to prior authorisation to ensure compliance with [...]

Guidance note on processing of personal information of children

The regulator published a guidance note on processing of personal information of children on 28 June 2021 to help responsible parties process the personal information of children lawfully. It mainly deals with an application for authorisation by the Regulator [...]

Guidance note on processing of Special Personal Information

The regulator published a guidance note on processing of Special Personal Information on 28 June 2021 to help responsible parties process Special Personal Information lawfully. The guidance note does not add much to what is currently in the law [...]

Guidance note on exemptions from the conditions of POPIA

The regulator published a guidance note on exemptions from the conditions for lawful processing of personal information in terms of Section 37 and 38 of POPIA on 21 June 2021. The guidance note helps those who intend to apply for [...]

Guidance note on information officers and deputy information officers

The information regulator has published a guidance note on information officers and deputy information officers to provide guidance, procedures and forms to enable responsible parties to do various things required by law. To save you time, we have summarised [...]

Guidelines to develop Codes of Conduct

Data protection authorities around the world can issue or approve Codes of Conduct under applicable data protection law. Monitoring bodies or associations often draft them and then submit them to the authority to be issued. To facilitate this process authorities [...]

The new EDPB guidelines will affect your cookie notice

In today's tech era you'll find that cookies and consent are hot data protection topics up for debate. Thankfully, the EDPB has recently released the EDPB guidelines to bring some much-needed clarity to the world of cookie notices. The [...]

By |2024-02-21T13:53:35+02:00August 24th, 2020|Categories: POPI and Data Protection|Tags: , , |

EDPB Guidelines on relying on contracts for processing

In October 2019, the EDPB published Guidelines 2/2019 on the processing of personal data under Article 6(1)(b) GDPR. These EDPB Guidelines specify which processing activities can be based on that provision. With lots of examples it helps to clear [...]

By |2024-02-21T13:53:36+02:00January 28th, 2020|Categories: POPI and Data Protection|Tags: , |

Access to information and data protection in elections

We need free and fair elections in order for democracy to work. Two key aspects of ensuring that the people's voice is heard is access to information (transparency or shining a light on the process) and data protection (processing [...]